Products: 2
Vulnerabilities: 6
Known Exploited: 0
1
Critical Level Threats
1
High Level Threats
4
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2021-27704
Appspace 6.2.4 is affected by Incorrect Access Control via the Appspace Web Portal password reset page.
Last Modified: Jun 27, 2025
Published: Nov 12, 2024
CVE-2021-27990
Appspace 6.2.4 is vulnerable to a broken authentication mechanism where pages such as /medianet/mail.aspx can be called directly and the framework is exposed with layouts, menus and functionalities.
Last Modified: Nov 21, 2024
Published: Apr 14, 2021
CVE-2021-27989
Appspace 6.2.4 is vulnerable to stored cross-site scripting (XSS) in multiple parameters within /medianet/sgcontentset.aspx.
Last Modified: Nov 21, 2024
Published: Apr 14, 2021
CVE-2021-27670
Appspace 6.2.4 allows SSRF via the api/v1/core/proxy/jsonprequest url parameter.
Last Modified: Nov 21, 2024
Published: Feb 25, 2021
CVE-2021-27564
A stored XSS issue exists in Appspace 6.2.4. After a user is authenticated and enters an XSS payload under the groups section of the network tab, it is stored as the group name. Whenever another member visits that group, this payload executes.
Last Modified: Nov 21, 2024
Published: Feb 22, 2021
Items Per Page
